FileCloud Trust Center
FileCloud is fully committed to protecting the integrity and privacy of your documents and data.
If you cannot find what you need here please contact us by emailing [email protected].
Monitoring
SOC 2 & HIPAA REPORTS
SOC 2 and HIPAA audit reports are available to FileCloud and Signority customers upon request. For non-customers, we provide SOC 2 Letters of Attestation and the HIPAA Auditor’s Summary Report.
Compliance

ISO 27001
FileCloud & Signority

SOC 2
Letter of Attestation: FileCloud

SOC 2
Letter of Attestation: Signority

ISO
ISO 9001: FileCloud Certificate
HIPAA
FileCloud & Signority
Resources
SOC 2 FileCloud Letter of Attestation
FileCloud
SOC 2 Signority Letter of Attestation
Signority
Signority SOC 2
Signority: SOC 2 TYPE 2 report
FileCloud SOC 2
FileCloud: SOC 2 TYPE 2 report
HIPAA
HIPAA report covering all product lines.
ISO 27001
Certificate (FileCloud & Signority)
ISO 9001
FileCloud ISO 9001 Certificate
WCAG (VPAT)
FileCloud Report
Data Protection Addendum
FileCloud Data Protection Agreement
Statement of Applicability
FAQs
Is FileCloud FedRAMP certified?
FileCloud expects to offer a FedRAMP High option in early 2026.
The Signority eSignature product will not be included in this launch.
How does FileCloud maintain and monitor compliance?
We maintain compliance year-round through continuous control monitoring, regular risk assessments, documented change management, and quarterly internal reviews. Findings are tracked to resolution, key programs are periodically tested, and employees complete ongoing training and policy attestations to ensure controls remain effective between independent audits.
How do your security controls align across multiple compliance frameworks?
Our security and privacy controls are designed using a unified control framework and mapped across applicable standards such as SOC 2, ISO/IEC 27001, HIPAA, and related regulatory requirements to reduce gaps and ensure consistent implementation.
How do you handle overlapping privacy laws across regions?
We maintain a global privacy baseline aligned with leading regulations and apply additional measures where regional or sector-specific requirements apply.
How does your compliance program support customer regulatory requirements?
Our controls are designed to help customers meet their own compliance obligations by providing a secure, compliant platform and relevant assurance documentation.
Are customers provided with framework-specific documentation?
We provide customer-facing summaries and assurance reports relevant to our audited scope. Additional documentation may be available to customers under NDA.
How do I receive a copy of your policies?
Our internal policies are not publicly distributed. To support customer due-diligence needs, we provide customer-facing security, privacy, and compliance summaries through our Trust Center that describe our policies and practices at a high level. Where appropriate, additional documentation may be made available to customers under NDA upon request.
How long does it take to be able to access a requested document?
Once you sign the NDA you will receive a response within one business day eastern time.
Do your certifications cover both products, FileCloud & Signority?
Yes.
Where do I go if I have more questions?
Please email [email protected] with any questions you have and someone will contact you within 1 business day.
Subprocessors

AWS

GlobalSign
Google Workspace

MS Office 365

Sendgrid
Email Routing

STRIPE
Email Routing

Twilio

SMTP2GO
Monitoring
Continuously monitored by Secureframe
